NVD List
Id | Name | Description | Reject | CVSS Version | CVSS Score | Severity | Pub Date | Modified Date | Actions |
---|---|---|---|---|---|---|---|---|---|
87732 | CVE-2017-10919 | Xen through 4.8.x mishandles virtual interrupt injection, which allows guest OS users to cause a denial of service (hypervisor crash), aka XSA-223. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
87731 | CVE-2017-10918 | Xen through 4.8.x does not validate memory allocations during certain P2M operations, which allows guest OS users to obtain privileged host OS access, aka XSA-222. | 2 | 10 | High | 2017-07-18 | 2017-07-10 | View | |
87730 | CVE-2017-10917 | Xen through 4.8.x does not validate the port numbers of polled event channel ports, which allows guest OS users to cause a denial of service (NULL pointer dereference and host OS crash) or possibly obtain sensitive information, aka XSA-221. | 2 | 9.4 | High | 2017-07-18 | 2017-07-10 | View | |
87729 | CVE-2017-10916 | The vCPU context-switch implementation in Xen through 4.8.x improperly interacts with the Memory Protection Extensions (MPX) and Protection Key (PKU) features, which makes it easier for guest OS users to defeat ASLR and other protection mechanisms, aka XSA-220. | 2 | 5 | Medium | 2017-07-18 | 2017-07-10 | View | |
87728 | CVE-2017-10915 | The shadow-paging feature in Xen through 4.8.x mismanages page references and consequently introduces a race condition, which allows guest OS users to obtain Xen privileges, aka XSA-219. | 2 | 6.8 | Medium | 2017-07-18 | 2017-07-10 | View |
Page 815 of 17672, showing 5 records out of 88360 total, starting on record 4071, ending on 4075